Re: [sqlmap-users] Good websites to test
Brought to you by:
inquisb
From: Steve P. <ste...@gm...> - 2010-12-03 22:33:26
|
On 12/03/2010 05:07 PM, Wil Ruiz wrote: > Anyone have good websites that they like to test on? I've done most of my testing on Acunetix. I'd like to expand my test cases. I'm talking legally of course; perhaps an environment like Damn Vulnerable Linux. Thank you. Moth (http://sourceforge.net/projects/w3af/files/moth/moth/) and OWASP BWA (http://code.google.com/p/owaspbwa/) are good choices with some synthetic broken apps as well as old vulnerable versions of open source apps. The Phoenix OWASP chapter also has a list of online targets (and other information). Somewhat old, but covers most of what's out there. http://www.owasp.org/index.php/Phoenix/Tools -- | Steven Pinkham, Security Consultant | | http://www.mavensecurity.com | | GPG public key ID CD31CAFB | |